Httpbin.org / jsonip.com / ip.42.pl flodding Pi-Hole

Hi there,

the three domains httpbin.org / jsonip.com / ip.42.pl are flodding my DNS Server (Pi-Hole) since some days.

I have 50.000 DNS queries per day only for this three domains.

I don’t know where they come from.

Do you have an idea?

Greets
Daniel

pihole tells you which machine they come from.

1 Like

Yes, they come from the Home Assistant. That’s why I am asking here :wink:

But I don’t know which part of Home Assistant is causing them.

I think it is since I had to reinstall from scratch with the 4.16 image but I am not sure.

Maybe you should have said so.

I think that these are unlikely to be coming from home assistant. Those domain names are not mentioned in the home assistant core codebase as far as I can see.

Yes, that’s what I can see, too. I don’t find any mentions for those domains. But the queries are coming from the Home Assistant IP address (100%)

I also blocked these domains to see if there is any integration or so which isn’t functionable any more, but nothing … HA is working perfectly.

What custom components and/or addons are you using?

HACS, Node-RED, ICS, Fritz!Box Tools, Deutscher Wetterdienst, Average, Huesensor, O365

I suggest you check those addons.

Found the source. It was the Glances plugin while getting the public ip and write it to InfluxDB.

The thing is that I am monitoring Glances in the HA Database and there is absolutely no need to write the data to InfluxDB as well.

1 Like